dhi.io/calico-node
3.30-debian-fips-dev, 3.30-debian13-fips-dev, 3.30-fips-dev, 3.30.7-debian-fips-dev, 3.30.7-debian13-fips-dev, 3.30.7-fips-dev
sha256:aadadc3989b1034eeacf58fdd8d2eac37ede60ae143facb21dd2bb8aae96e6f6
Manifest digest:sha256:fa16b0ed1ccdd02478ff1c97b448b965631a387dc411903322a577877efc81be
Size
94.03 MB
Last pushed
3 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/calico-node:3.30-debian-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/calico-node:3.30-debian-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/calico-node@sha256:eeacdd97c0707656784db107d2a8de480585e17a5c801200188be49bc1d089e5 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/calico-node@sha256:44c8097c251637e71307438fbe11154a7db7da478ad7e4e6111bcdd449beacff |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/calico-node@sha256:9d179ee5f3e3e905afe11a5add5feb00951b4ebbe055a1d3acb3f6a0d48ae86b |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/calico-node@sha256:464a18738017a6c417e961953ffd4d3eb59109a06046e612f559ce04d5a151da |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/calico-node@sha256:2e5ddbb53f5e299fb75e6073251b8599a5e443f0319a40cab07acbd74ee61fc8 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/calico-node@sha256:4c26769d4e5553c5d6b5437323c59ffa63942e2a4811170f557c59af96fd2f59 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/calico-node@sha256:ff98b6d2ba27583beb630aa7040f8a0871891b4a3814839ec48cfff1f0f89f0c |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/calico-node@sha256:81bd3ac193a91134d29466ead632eb87564eba281f77ffe8e5446b87fc4aa8a8 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/calico-node@sha256:f2407f698e522af9e359ea6c1e1d5d9cc85419b57a326a25c12ed97cd56b9ec2 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/calico-node@sha256:c57f6ad983310c96dc3201103b44cc6caef53b3e20d85c7fb17e268205dfa796 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/calico-node@sha256:75dcade3a63ee456c9b0d9a10152f06942dfce16fe9d863552b6357c91008b53 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/calico-node@sha256:d4592bffe84b259930978c50347d53d62a26173b194f9ea7b8960573d4e50f56 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/calico-node@sha256:9b56b23c597415b1ec04217cf51d6e4bac484f079deee799faed6729743ea5d9 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/calico-node@sha256:8e23019c38d17f60102c29d2a3b2a37151f1a7772496efe7a623c69040e4fa9b |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/calico-node@sha256:a8a14db3c364f0b64b0f6c06a516121c162ed8c69827b0f609c8fe88cb7aa15b |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/calico-node@sha256:5741460858c2a4c3fa46dc7bfa20fc8e3d075bdef380b4afae62f904086653d0 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/calico-node@sha256:1bd04313e388239f31fc42402efbad09a2586bd1acc40f3d5348002a9bb3e449 |